Ted Kaczmarek <[EMAIL PROTECTED]> wrote:
> Pardon my ignorance but in experimental.conf I see no mention of
> kerberos.

  Hmm... dang.  It should really be there.

> I see this in the module source.
> rlm_krb5: Attribute \"User-Password\" is required for authentication.
> 
> What should this users attribute be set for?

  Kerberos needs a clear-text password for authentication.

  Note that this is authentication *to* a kerberos controller, NOT
sending a kerneros ticket over RADIUS.

> Is the "Auth-Type := krb5" ? 

  Yes.

  Alan DeKok.


- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to